Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 14:59:04.380 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 14:59:04.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 14:59:04.537 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 14:59:04.298 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 14:59:04.673 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 14:59:37.409 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:50164 10 6452 1 2025-11-07 14:54:56.724 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:00:37.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6452 1 2025-11-07 15:01:38.181 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37776 10 6452 1 2025-11-07 15:02:38.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 10 6452 1 2025-11-07 15:03:38.995 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54648 10 6452 1 2025-11-07 15:04:04.959 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:04:04.869 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:04:04.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:04:04.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:04:04.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:04:39.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-11-07 14:59:56.729 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:05:39.800 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 10 6452 1 2025-11-07 15:06:40.172 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43558 10 6452 1 2025-11-07 15:01:56.727 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:07:40.568 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-11-07 15:08:41.470 00:00:10.828 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-11-07 15:09:04.791 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:09:04.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:09:04.649 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:09:04.710 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:09:04.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:09:42.338 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41704 10 6452 1 2025-11-07 15:10:42.698 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36906 10 6452 1 2025-11-07 15:11:43.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42288 10 6452 1 2025-11-07 15:06:56.731 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:12:43.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36762 10 6452 1 2025-11-07 15:13:43.922 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 10 6452 1 2025-11-07 15:08:56.729 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:14:05.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:14:04.942 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:14:05.565 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:14:05.575 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:14:05.648 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:14:44.318 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-11-07 15:15:44.677 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59310 10 6452 1 2025-11-07 15:16:45.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46186 10 6452 1 2025-11-07 15:17:45.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42266 10 6452 1 2025-11-07 15:13:56.732 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:18:45.916 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-11-07 15:19:04.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:19:04.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:19:04.905 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:19:04.913 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:19:04.878 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:19:46.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-11-07 15:20:46.720 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-11-07 15:15:56.731 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:21:47.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-11-07 15:22:47.546 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 11 6504 1 2025-11-07 15:23:48.013 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59692 10 6452 1 2025-11-07 15:24:05.084 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:24:04.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:24:05.084 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:24:05.176 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:24:05.167 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:24:48.427 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-11-07 15:25:48.841 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6452 1 2025-11-07 15:20:56.736 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:26:49.266 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34012 10 6452 1 2025-11-07 15:27:49.675 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59362 10 6452 1 2025-11-07 15:22:56.733 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:28:50.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-11-07 15:29:05.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:29:04.902 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:29:05.223 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:29:05.136 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:29:05.307 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:29:50.513 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6452 1 2025-11-07 15:30:50.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6452 1 2025-11-07 15:31:51.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38236 10 6452 1 2025-11-07 15:27:56.736 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:32:51.719 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-11-07 15:34:05.304 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:34:05.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:34:05.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:33:52.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-11-07 15:34:05.221 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:34:05.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:29:56.734 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:34:52.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33854 10 6452 1 2025-11-07 15:35:52.920 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55712 10 6452 1 2025-11-07 15:36:53.327 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38990 10 6452 1 2025-11-07 15:37:53.684 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40844 10 6452 1 2025-11-07 15:39:05.435 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:39:05.364 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:39:05.635 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:39:05.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:38:54.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 10 6452 1 2025-11-07 15:39:05.370 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:34:56.738 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:39:54.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48894 10 6452 1 2025-11-07 15:40:54.916 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50456 10 6452 1 2025-11-07 15:36:56.736 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:41:55.281 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:33582 12 10375 1 2025-11-07 15:42:55.760 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 10 6452 1 2025-11-07 15:44:05.431 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:44:05.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:44:05.419 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:44:05.349 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:44:05.156 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:43:56.131 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6452 1 2025-11-07 15:44:56.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51206 10 6452 1 2025-11-07 15:45:56.937 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59774 10 6452 1 2025-11-07 15:41:56.740 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:46:57.354 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 12 10369 1 2025-11-07 15:47:57.788 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39248 10 6452 1 2025-11-07 15:43:56.737 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:49:05.813 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:49:05.682 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:49:05.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:49:05.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:49:05.633 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:48:58.192 00:00:18.279 TCP 1.101.0.1:3000 -> 23.104.0.1:47654 10 6452 1 2025-11-07 15:50:06.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43882 10 6452 1 2025-11-07 15:51:06.922 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:51744 10 6452 1 2025-11-07 15:52:07.577 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46570 10 6452 1 2025-11-07 15:53:07.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-11-07 15:48:56.741 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 15:54:05.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 15:54:05.459 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:54:05.722 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 15:54:05.620 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 15:54:05.804 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 15:54:08.386 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-11-07 15:55:08.795 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50214 10 6452 1 2025-11-07 15:50:56.738 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 15:56:09.200 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44390 10 6452 1 2025-11-07 15:57:09.602 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59104 10 6452 1 2025-11-07 15:58:10.014 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50804 10 6452 1 Summary: total flows: 136, total bytes: 418317, total packets: 1013, avg bps: 879, avg pps: 0, avg bpp: 412 Time window: 2025-11-07 14:54:56 - 2025-11-07 15:58:20 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0057s User: 0.0000s Wall: 0.0024s flows/second: 57237.1 Runtime: 0.0024s